Skip to content

Conversation

@nerdy-tech-com-gitub
Copy link
Owner

snyk-top-banner

Snyk has created this PR to upgrade puppeteer from 21.4.1 to 24.22.3.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 111 versions ahead of your current version.

  • The recommended version was released 21 days ago.

⚠️ Warning: This PR contains major version upgrade(s), and may be a breaking change.

Issues fixed by the recommended upgrade:

Issue Score Exploit Maturity
critical severity Incomplete List of Disallowed Inputs
SNYK-JS-BABELTRAVERSE-5962462
218 Proof of Concept
high severity Excessive Platform Resource Consumption within a Loop
SNYK-JS-BRACES-6838727
218 Proof of Concept
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-SEMVER-3247795
218 Proof of Concept
high severity Improper Link Resolution Before File Access ('Link Following')
SNYK-JS-TARFS-10293725
218 No Known Exploit
high severity Symlink Attack
SNYK-JS-TARFS-9535930
218 Mature
high severity Denial of Service (DoS)
SNYK-JS-WS-7266574
218 Proof of Concept
high severity Denial of Service (DoS)
SNYK-JS-WS-7266574
218 Proof of Concept
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-CROSSSPAWN-8303230
218 Proof of Concept
high severity Server-side Request Forgery (SSRF)
SNYK-JS-IP-12704893
218 Proof of Concept
high severity Server-side Request Forgery (SSRF)
SNYK-JS-IP-12761655
218 Proof of Concept
high severity Server-side Request Forgery (SSRF)
SNYK-JS-IP-12704893
218 Proof of Concept
high severity Server-side Request Forgery (SSRF)
SNYK-JS-IP-12761655
218 Proof of Concept
high severity Code Injection
SNYK-JS-LODASH-1040724
218 Proof of Concept
high severity Prototype Poisoning
SNYK-JS-QS-3153490
218 Proof of Concept
high severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-SEMVER-3247795
218 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-UAPARSERJS-3244450
218 Proof of Concept
medium severity Improper Restriction of Security Token Assignment
SNYK-JS-JSONWEBTOKEN-3180024
218 No Known Exploit
medium severity Denial of Service (DoS)
SNYK-JS-JSZIP-1251497
218 Proof of Concept
medium severity Open Redirect
SNYK-JS-KOA-10944994
218 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-LODASH-1018905
218 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-MINIMATCH-3050818
218 No Known Exploit
low severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-BRACEEXPANSION-9789073
218 Proof of Concept
critical severity Arbitrary Command Injection
SNYK-JS-SYSTEMINFORMATION-5914637
218 No Known Exploit
high severity Server-side Request Forgery (SSRF)
SNYK-JS-IP-6240864
218 Proof of Concept
high severity Server-side Request Forgery (SSRF)
SNYK-JS-IP-6240864
218 Proof of Concept
medium severity Arbitrary Code Injection
SNYK-JS-SYSTEMINFORMATION-8547981
218 Proof of Concept
medium severity Symlink Following
SNYK-JS-TARFS-13045213
218 No Known Exploit
medium severity Symlink Attack
SNYK-JS-TMP-11501554
218 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-WS-1296835
218 Proof of Concept
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-HTTPCACHESEMANTICS-3248783
218 Proof of Concept
medium severity Server-Side Request Forgery (SSRF)
SNYK-JS-IP-7148531
218 Proof of Concept
medium severity Server-Side Request Forgery (SSRF)
SNYK-JS-IP-7148531
218 Proof of Concept
medium severity Improper Authentication
SNYK-JS-JSONWEBTOKEN-3180022
218 No Known Exploit
medium severity Use of a Broken or Risky Cryptographic Algorithm
SNYK-JS-JSONWEBTOKEN-3180026
218 No Known Exploit
medium severity Arbitrary File Write via Archive Extraction (Zip Slip)
SNYK-JS-JSZIP-3188562
218 No Known Exploit
medium severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-PATHPARSE-1077067
218 Proof of Concept
low severity Regular Expression Denial of Service (ReDoS)
npm:debug:20170905
218 Proof of Concept
critical severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-KOA-8720152
218 No Known Exploit
medium severity Inefficient Regular Expression Complexity
SNYK-JS-MICROMATCH-6838728
218 No Known Exploit
low severity Cross-site Scripting (XSS)
SNYK-JS-KOA-9679272
218 Proof of Concept
Release notes
Package name: puppeteer
  • 24.22.3 - 2025-09-24
  • 24.22.2 - 2025-09-23
  • 24.22.1 - 2025-09-23
  • 24.22.0 - 2025-09-17
  • 24.21.0 - 2025-09-15
  • 24.20.0 - 2025-09-10
  • 24.19.0 - 2025-09-04
  • 24.18.0 - 2025-09-01
  • 24.17.1 - 2025-08-28
  • 24.17.0 - 2025-08-20
  • 24.16.2 - 2025-08-14
  • 24.16.1 - 2025-08-11
  • 24.16.0 - 2025-08-06
  • 24.15.0 - 2025-07-23
  • 24.14.0 - 2025-07-16
  • 24.13.0 - 2025-07-15
  • 24.12.1 - 2025-07-09
  • 24.12.0 - 2025-07-07
  • 24.11.2 - 2025-07-01
  • 24.11.1 - 2025-06-28
  • 24.11.0 - 2025-06-27
  • 24.10.2 - 2025-06-18
  • 24.10.1 - 2025-06-12
  • 24.10.0 - 2025-06-02
  • 24.9.0 - 2025-05-20
  • 24.8.2 - 2025-05-08
  • 24.8.1 - 2025-05-06
  • 24.8.0 - 2025-05-02
  • 24.7.2 - 2025-04-24
  • 24.7.1 - 2025-04-23
  • 24.7.0 - 2025-04-22
  • 24.6.1 - 2025-04-09
  • 24.6.0 - 2025-04-03
  • 24.5.0 - 2025-04-01
  • 24.4.0 - 2025-03-06
  • 24.3.1 - 2025-03-03
  • 24.3.0 - 2025-02-24
  • 24.2.1 - 2025-02-14
  • 24.2.0 - 2025-02-05
  • 24.1.1 - 2025-01-23
  • 24.1.0 - 2025-01-15
  • 24.0.0 - 2025-01-10
  • 23.11.1 - 2024-12-19
  • 23.11.0 - 2024-12-18
  • 23.10.4 - 2024-12-12
  • 23.10.3 - 2024-12-10
  • 23.10.2 - 2024-12-09
  • 23.10.1 - 2024-12-04
  • 23.10.0 - 2024-12-03
  • 23.9.0 - 2024-11-21
  • 23.8.0 - 2024-11-13
  • 23.7.1 - 2024-11-07
  • 23.7.0 - 2024-11-04
  • 23.6.1 - 2024-10-28
  • 23.6.0 - 2024-10-16
  • 23.5.3 - 2024-10-11
  • 23.5.2 - 2024-10-10
  • 23.5.1 - 2024-10-07
  • 23.5.0 - 2024-10-02
  • 23.4.1 - 2024-09-25
  • 23.4.0 - 2024-09-18
  • 23.3.1 - 2024-09-16
  • 23.3.0 - 2024-09-04
  • 23.2.2 - 2024-09-03
  • 23.2.1 - 2024-08-29
  • 23.2.0 - 2024-08-26
  • 23.1.1 - 2024-08-21
  • 23.1.0 - 2024-08-14
  • 23.0.2 - 2024-08-08
  • 23.0.1 - 2024-08-07
  • 23.0.0 - 2024-08-07
  • 22.15.0 - 2024-07-31
  • 22.14.0 - 2024-07-25
  • 22.13.1 - 2024-07-17
  • 22.13.0 - 2024-07-11
  • 22.12.1 - 2024-06-26
  • 22.12.0 - 2024-06-21
  • 22.11.2 - 2024-06-18
  • 22.11.1 - 2024-06-17
  • 22.11.0 - 2024-06-12
  • 22.10.1 - 2024-06-11
  • 22.10.0 - 2024-05-24
  • 22.9.0 - 2024-05-16
  • 22.8.2 - 2024-05-15
  • 22.8.1 - 2024-05-13
  • 22.8.0 - 2024-05-06
  • 22.7.1 - 2024-04-25
  • 22.7.0 - 2024-04-23
  • 22.6.5 - 2024-04-15
  • 22.6.4 - 2024-04-11
  • 22.6.3 - 2024-04-05
  • 22.6.2 - 2024-04-02
  • 22.6.1 - 2024-03-25
  • 22.6.0 - 2024-03-20
  • 22.5.0 - 2024-03-15
  • 22.4.1 - 2024-03-08
  • 22.4.0 - 2024-03-05
  • 22.3.0 - 2024-02-26
  • 22.2.0 - 2024-02-22
  • 22.1.0 - 2024-02-17
  • 22.0.0 - 2024-02-05
  • 21.11.0 - 2024-02-02
  • 21.10.0 - 2024-01-29
  • 21.9.0 - 2024-01-24
  • 21.8.0 - 2024-01-24
  • 21.7.0 - 2024-01-04
  • 21.6.1 - 2023-12-13
  • 21.6.0 - 2023-12-06
  • 21.5.2 - 2023-11-15
  • 21.5.1 - 2023-11-09
  • 21.5.0 - 2023-11-02
  • 21.4.1 - 2023-10-24
from puppeteer GitHub release notes

Important

  • Warning: This PR contains a major version upgrade, and may be a breaking change.
  • Check the changes in this PR to ensure they won't cause issues with your project.
  • This PR was automatically created by Snyk using the credentials of a real user.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open upgrade PRs.

For more information:

Snyk has created this PR to upgrade puppeteer from 21.4.1 to 24.22.3.

See this package in npm:
puppeteer

See this project in Snyk:
https://app.snyk.io/org/nerds-github/project/b402c2a4-88c2-41a8-ad24-ce2c2c83a779?utm_source=github&utm_medium=referral&page=upgrade-pr
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants